I developed a new Drupal 7.66 website which was basically a copy of another Drupal website. I made the copy and then did some customizing under a temporary domain name until I was able to get access to the production domain name. Once I had the production domain name (highoctanetrading.net) I changed $base_name in the settings.php file and everything works great except that when I try to log in as admin the Image CAPTCHA does not appear and therefore I am unable to log in: https://www.highoctanetrading.net/user
Our now regular client (see the MLSE: TFC Insider, MLSE: Leafs Nation and MLSE: Raptors Insider projects), Maple Leafs Sports & Entertainment, wanted to add a new kind of experience to the set of exceptional sports fan experiences that they were already providing:
I found some malicious code in the cache_form table as well as in the watchdog table.
Drupal 7.66
I am getting a large number of requests from the web that include info base64 encoded. Probably from a bot. It appear to want to kill some processes and use wget to download files. There are several different versions of it in the watchdog table.
I Assume they are in the watchdog table because they have been discovered and stopped.
I'm new to Drupal, using version 7, and generating a Certificate node into a PDF (TCPDF). When generating the PDF, three things are added automatically(marked in the image below):